Zero-day vulnerability in Adobe Reader

Discussion in 'other security issues & news' started by ronjor, Feb 13, 2013.

Thread Status:
Not open for further replies.
  1. ronjor

    ronjor Global Moderator

  2. siljaline

    siljaline Registered Member

  3. DrBenGolfing

    DrBenGolfing Registered Member

    Does this work on Foxit or the built-in reader in Chrome and Firefox?
     
  4. ronjor

    ronjor Global Moderator

    http://www.adobe.com/support/security/advisories/apsa13-02.html
     
  5. ronjor

    ronjor Global Moderator

    http://arstechnica.com/security/201...r-critical-zero-day-exploit-not-on-by-default
     
  6. FanJ

    FanJ Updates Team

    Thanks Ron!
     
  7. siljaline

    siljaline Registered Member

    Adobe confirms targeted attacks due to security hole in Reader

    Cybercriminals have already taken advantage of the latest security hole in Adobe Reader and Acrobat.
     
  8. Hungry Man

    Hungry Man Registered Member

    I suggest using protected view and EMET. Based on a very quick look (busy) I'd say EMET would stop this.
     
  9. siljaline

    siljaline Registered Member

    Adobe didn't tell us to disable AdobeARM from MSCONFIG. :ouch:

    Please ask a Mod or an Expert if you are unsure | uncomfortable performing the above action.
     
  10. ronjor

    ronjor Global Moderator

  11. SweX

    SweX Registered Member

    Thx Ron, then I know when to make an update as I update manually :thumb:
     
  12. siljaline

    siljaline Registered Member

    As recommended here.

     
  13. siljaline

    siljaline Registered Member

    http://blogs.adobe.com/psirt/2013/0...y-for-adobe-reader-and-acrobat-apsa13-02.html

     
  14. Hungry Man

    Hungry Man Registered Member

    EMET 3.5 will prevent this exploit at multiple steps. I would suggest using it.
     
  15. Syobon

    Syobon Registered Member

    yep
    https://twitter.com/msftsecresponse

    even 3.0 will do.
     
  16. ronjor

    ronjor Global Moderator

  17. siljaline

    siljaline Registered Member

  18. ZeroVulnLabs

    ZeroVulnLabs Developer (aka "pbust")

  19. Syobon

    Syobon Registered Member

  20. Dark Shadow

    Dark Shadow Registered Member

    EMET is a neat little tool to have or exploit shield.IMO I think everyone should at least one of them on board,Especially having reader,Flash,Java etc.
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice